Legal · Privacy
Privacy Policy
How we handle personal information belonging to you, your team and your tenants, under the Privacy Act 1988 (Cth) and the Australian Privacy Principles.
Last updated 29 July 2026 · Applies to the Girilang web app, the iPhone app, and girilang.com
The short version
- We collect what the platform needs to run your properties: your account details, the records you enter, and the documents and photos you upload.
- Your data lives on Google Cloud infrastructure in Sydney, encrypted in transit and at rest, and is visible only to people in your organisation whose role allows it.
- We never sell or rent your personal information, and we do not use it to build advertising profiles.
- You can delete your account yourself, from the web app or the iPhone app. Some organisation records are retained where the law requires it.
This summary is here to be read. The numbered clauses below are the ones that apply.
1 Who we are
Girilang is operated by Corona Projects Pty Ltd (ABN 33 122 390 023) trading as Girilang. In this policy "Girilang", "we", "us" and "our" mean that company, which is the entity responsible for the personal information described here.
Girilang is an Australian property management platform for people who run their own rentals: self-managing landlords, owners, hands-on managers, and the tenants who live in their properties. It gives every property a working record: rooms, tenancies, leases, inspections, maintenance, keys, documents, and the dates attached to all of them.
The platform is available as a web app and an iPhone app. Our compliance work targets New South Wales residential tenancy and boarding house legislation, though the platform is used by owners across Australia.
This policy explains what personal information we collect, why, how we protect it, and the rights you have over it. By creating an account or using Girilang, you agree to the handling described here. For any privacy enquiry, write to privacy@girilang.com.
2 Information we collect
Account information
When you create an account we collect your name, email address, an optional phone number, and an optional profile photo. Passwords are hashed by Firebase Authentication and are never stored in plain text or visible to us.
You may instead sign in with a Google, Apple, or Microsoft account, in which case we receive your name and email address from that provider. Changing the address you sign in with always requires confirmation from the new address, so the change only takes effect once you open the link we send there, so the old address keeps working until you do.
If you request a call from a demo, we collect your name, organisation name, email address, optional phone number, preferred contact time, and any message you provide. Girilang platform administrators use these details only to respond to your request and arrange the call.
Passkeys and biometric sign-in
If you set up a passkey, we store a public key, a credential identifier, the credential's transport methods and sign-in counter, and a general description of the device that created it (for example "iPhone" or "Mac") so you can recognise and revoke it later. Your fingerprint, face, device passcode, and the corresponding private key never leave your device and are never transmitted to or stored by Girilang. You can remove a passkey at any time from Account → Security.
Property, tenancy and contact records
Owners and managers enter property addresses, room configurations, and tenancy details, including tenant names, contact details, lease dates, bond amounts, and rent. You may also record other people as contacts: prospective tenants, co-owners, trades, and vendors. This information is held on your behalf, to deliver the service to you, and you are responsible for having collected it lawfully.
Financial information
We record rent amounts, payment statuses, utility bill amounts, and cost allocations that you enter. This is your own tenancy data, and Girilang neither processes nor holds rent or bond money.
Your subscription to Girilang is billed through Stripe, a PCI-compliant payment provider. Starting a free trial requires a payment method. Card details are entered into Stripe-hosted secure fields and never reach our servers: we receive and store only the card type, its last four digits and its expiry, so you can recognise which card is on file. To prevent repeated free-trial use, we also store a one-way hash of Stripe's card fingerprint and associate it with the account that claimed the trial. Stripe holds the card itself, issues your invoices, and acts as an independent controller of that information under its own privacy policy.
Signatures and signed documents
When you sign a document through the platform, we capture your electronic signature as a digital image together with a timestamp, IP address, and device information. These details form the audit trail attached to each signed document, and are what make it admissible evidence of the signing act. If an agreement is later revised and re-sent, the superseded terms and the signatures collected against them are both kept, because a signature attests to the document a party was actually shown.
Photos, video and other media
Users upload photographs and video in connection with inspections and condition reports, maintenance jobs, room and property records, and listing material. Images are downscaled on your device before upload, stored privately, and served only to signed-in users your organisation's permissions allow. They are never given a public link.
Inspections, maintenance and communications
Inspection findings, condition report entries, maintenance job descriptions, status changes, vendor details, notes, and the messages and notifications sent through the platform are stored so the property has a continuous history rather than a set of disconnected events.
Documents
Lease agreements, condition reports, house rules, disclosure statements, and other documents you upload or generate are stored with access controls that restrict visibility to authorised parties.
Support enquiries
When you submit the support form on our website, which you may do without an account, we collect your name, email address, any organisation name you supply, and the topic, subject, and content of your message. The enquiry is stored so we can track and answer it, and a copy is emailed to our support team with your address set as the reply-to address. To stop the form being used to flood our inbox, we also record a one-way cryptographic hash of your email address and of your network address together with a submission count; neither underlying address is stored or written to our logs.
Location information
Some features, such as suggesting the nearest property on the Keys page, can use your device's location. This is off until you turn it on, and the browser or operating system asks separately before granting it. Your coordinates are used on your device, for the check you initiated, and are never transmitted to or stored on our servers. You can withdraw the permission at any time from Account → Privacy, or in your browser or device settings.
Device and security identifiers
To protect the platform against automated misuse and fraudulent access, we use device attestation technology that collects limited device and application identifiers. This is processed solely for security and is never used for advertising.
Usage and technical data
We automatically collect limited technical data when you use the platform: device type, browser type, IP addresses recorded in activity and audit logs, and interaction logs. This is used to keep the platform reliable, diagnose errors, provide the audit trail described above, and improve the service.
Sign-in records
Each time you sign in we record the date and time, the sign-in method used, the IP address the request came from, a description of the device and browser, and an approximate location (city and region) resolved from that IP address by a third-party geolocation lookup. We keep the twenty most recent sign-ins for your account and delete older ones automatically.
This is a security record. It lets us and you tell an ordinary sign-in from an unfamiliar one, and it is what we look at when an account is reported as compromised. It is visible only to Girilang platform administrators, and you may request a copy of your own records under “Access and correction” below.
3 How we use your information
We use personal information to:
- Provide, operate, secure and improve the Girilang platform.
- Send transactional messages such as lease signing invitations and reminders, rent and maintenance updates, invitations to join an organisation, and security notices such as password resets.
- Let owners, managers and tenants collaborate on the properties they share.
- Generate lease documents, condition reports and other records on your behalf.
- Maintain the audit trail behind signed documents and consequential administrative actions.
- Draft listing and marketing copy from details you supply. This runs on our own servers from a template. Your data is not sent to a third-party AI service and is not used to train anyone’s model.
- Meet our obligations under applicable Australian law, including NSW tenancy and boarding house legislation.
- Answer support enquiries and resolve technical problems.
- Authenticate you, verify registered passkeys, and detect and prevent fraud, spam and automated abuse of our sign-in and public support forms.
We do not sell, rent, or trade your personal information, and we do not use it to build advertising or marketing profiles. Girilang does not publish rental listings, screen tenants, or operate a rental marketplace, so your property and tenancy records are never surfaced to the public.
5 Where your data lives, and how it is secured
Your data is stored on Google Cloud infrastructure in Sydney, Australia. Our server-side functions and the web app's server routes run in the same Australian region, so day-to-day processing stays onshore. Some of our providers, notably the identity providers you may choose to sign in with, operate globally, and information handled by them may be processed overseas under their own privacy commitments.
Data is encrypted in transit and at rest. Access is governed by role-based security rules evaluated on the server for every read and write, so an authorisation check cannot be bypassed by the client. Private files, signed leases, signature images, inspection and maintenance photos, are never given a permanent public link; each request is authorised against your own session before the bytes are returned.
Consequential administrative actions on the platform are written to an append-only audit log that no user can edit or delete.
No internet-based service can be guaranteed completely secure. If you find a vulnerability or suspect a breach, please tell us at security@girilang.com. We will investigate promptly, and where a data breach is likely to result in serious harm we will notify affected individuals and the Office of the Australian Information Commissioner as the Notifiable Data Breaches scheme requires.
6 Your rights and choices
Under the Privacy Act 1988 (Cth) and the Australian Privacy Principles, you may:
Access your information
Ask for a copy of the personal information we hold about you. Much of it is already visible in the app; for anything else, write to privacy@girilang.com.
Correct your information
Update anything inaccurate, incomplete or out of date. Your own profile, contact details and sign-in address can be changed at any time from Account.
Delete your account
You can delete your account yourself at Account → Security → Delete account, in the web app or the iPhone app. Your account closes straight away and is permanently deleted 60 days later; nothing is destroyed before then, and you can restore it at any point in between from the link in the email we send you. At the end of that period we remove your sign-in credentials, your profile, your personal files, your sign-in history and your membership of every organisation. Your name is replaced with an anonymous marker in administrative logs rather than those logs being deleted.
Records owned by an organisation, such as properties, tenancies, signed leases and financial records, belong to that organisation and are retained under the retention clause below. If you own an organisation you must either transfer ownership to another member first, so its records do not become unreachable, or choose to close the organisation alongside your account.
Delete your organisation
An organisation owner can close the whole workspace at Organisation → Danger zone. We build you an archive of everything first — properties, rooms, tenancies, contacts and financials as spreadsheets, plus every signed lease and uploaded image — and the 60 days do not begin until it is ready. Everyone with a seat is emailed when it is scheduled, again a week beforehand, and once more when it is done. At the end, every property, room, contact, application, photograph and document is permanently deleted, along with the workspace itself. Tenancy, lease and financial records are sealed instead, and destroyed individually as the retention period for each expires.
Control optional collection
Location sharing is off until you enable it and can be revoked from Account → Privacy. Analytics can be switched off in your browser as described below. Neither affects your ability to use the platform.
Complain
Raise a complaint about how we have handled your personal information with us at privacy@girilang.com. If you are not satisfied with our response, you can escalate it to the Office of the Australian Information Commissioner at oaic.gov.au.
We acknowledge requests promptly and respond within 30 days. Where the information you are asking about was entered by an organisation you belong to rather than by us, we will tell you so and, where we can, put you in touch with the right person there.
7 How long we keep information
We keep personal information for as long as your account is active or as needed to provide the service. Specific periods by type:
- Tenancy records, signed leases and financial records: kept up to seven years after the end of the relevant tenancy, to satisfy Australian tax and tenancy record-keeping obligations, including after an individual account is closed.
- Archived properties: retained for 30 days, together with their rooms, documents and media, then permanently and irreversibly deleted.
- Closed accounts and organisations: archived for 60 days, during which the deletion can be reversed, then permanently deleted along with every stored file and image. Tenancy, lease and financial records are the exception — they are sealed at that point, unreachable by anyone including us, and destroyed as the retention period above expires for each one.
- Demo workspaces: cleared automatically, usually within a day. The record that somebody requested a demo — a name, organisation and email address — is kept for 24 months as a sales enquiry.
- Inspections, condition reports and maintenance records: kept for the duration of the tenancy and any further period applicable legislation requires.
- Audit logs for signed documents and administrative actions: retained indefinitely; they are the record of what was done and by whom, and are deliberately not deletable.
- Passkey credentials: kept until you remove the passkey or delete your account, whichever comes first.
- Support enquiries: kept up to two years, so we can refer back to your support history. The hashed identifiers behind rate limiting are counters only, and reset when the limiting window expires.
- Usage and technical logs: kept up to 90 days for diagnostics, then deleted.
When information is no longer required, it is deleted from our systems and from our service providers' systems under our data processing arrangements with them.
9 Children's privacy
Girilang is intended for adults aged 18 and over. We do not knowingly collect personal information from anyone under 18. If you believe a minor has given us personal information, contact us and we will delete it promptly.
10 Changes to this policy
We may update this policy from time to time. When we do, we revise the "last updated" date at the top of this page. Where a change is material, a new category of information, a new purpose, or a new recipient, we will notify registered users by email before it takes effect. Continuing to use the platform after that date means you accept the updated policy.
11 Contact us
Privacy questions, access requests and complaints go to privacy@girilang.com. Security reports go to security@girilang.com. Anything else reaches us at support@girilang.com.
Please do not send passwords, access codes or full identity documents to any of our inboxes.
The rules that govern using Girilang
Our Terms of Service cover accounts, electronic signatures, generated documents, fees and liability.
privacy@girilang.com